Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
CVE-2026-21514 is a security feature bypass vulnerability in Microsoft Word, disclosed on February 10, 2026. This flaw allows attackers to exploit nearly 14 million assets across seven Tier 1 countries, primarily in the United States. The vulnerability enables malware deployment without triggering u...
On February 10, 2026, Microsoft released a security update addressing 59 vulnerabilities, including six zero-day flaws that were actively exploited prior to the patch. The vulnerabilities affect various Microsoft products, with three of them being security feature bypass flaws, allowing attackers to...
A newly discovered vulnerability in Microsoft Word, tracked as CVE-2026-21514, allows attackers to bypass key security features using specially crafted documents. This flaw was published on February 10, 2026, and has been added to the CISA Known Exploited Vulnerabilities list due to active exploitat...
Microsoft has released updates to address a critical zero-day vulnerability in Windows Shell, tracked as CVE-2026-21510, which is actively being exploited. This security flaw allows remote attackers to bypass essential protection mechanisms, affecting millions of Windows users. The vulnerability was...